Resume
SYARIP MUHAMMAD ABDILLAH
Lead System Engineer | Infrastructure & Platform Engineering | DevOps / SRE | Kubernetes | DevSecOps
- Location: Jakarta, Indonesia
- E-Mail: abdillahsyarip@gmail.com
- Website: https://syarifabdillah.my.id
- LinkedIn: linkedin.com/in/syarifabdillah
- Credly Badges: credly.com/users/syarifabdillah
- GitHub: github.com/sectenzorg
Download Curriculum Vitae (PDF)
Professional Profile
Lead System Engineer specializing in infrastructure and platform engineering, with 6+ years of experience supporting mission-critical banking, payment, and enterprise production environments. Strong background in Kubernetes, Linux, CI/CD, Harbor, observability, DevSecOps, hybrid cloud, high availability, incident response, and infrastructure automation. Experienced in improving infrastructure reliability, operating cloud-native platforms, strengthening secure operations, and driving continuous improvement across production services. Contributed to the ETWPAD platform from initial setup to production-ready operations and supported successful scale testing for 500,000 soldiers/users through Kubernetes, GitLab CI/CD, Harbor, monitoring, log management, and DevSecOps controls.
Key Achievements
- ETWPAD Production Deployment: Operationalized the ETWPAD platform from initial setup into production-ready infrastructure using Kubernetes, CI/CD, container registry, monitoring, logging, and DevSecOps controls.
- Large-Scale Load Testing (500,000 Users): Supported successful scale testing for 500,000 soldiers/users by strengthening deployment workflow, infrastructure readiness, health monitoring, alerting, and troubleshooting practices.
- End-to-End Observability: Implemented end-to-end observability with Uptime Kuma, Grafana, Loki, Grafana Alloy, Prometheus, and Node Exporter for uptime, metrics, logs, infrastructure health, and incident visibility.
- DevSecOps Quality Gates: Integrated DevSecOps quality and security checks using SonarQube, OWASP ZAP, Semgrep, Aqua Security, and Trivy for SAST, DAST, container scanning, and vulnerability follow-up.
- High Availability & Reliability: Improved production reliability through high availability patterns using HAProxy, NGINX, Traefik, Kong API Gateway, DMZ architecture, WAF, and structured operational coordination.
- Enterprise Support: Supported banking, payment, AML, EDC, SOC, and customer-facing platforms across cloud, on-premise, VM, bare-metal, and hybrid infrastructure environments.
Core Skills & ATS Keywords
- Infrastructure & Platform Engineering: Linux, Windows Server, Kubernetes, Docker, VMware, Proxmox, Nutanix, HPE SimpliVity, Bare Metal, HCI, Server Maintenance, Platform Operations, High Availability
- DevOps, CI/CD & Automation: GitLab CI/CD, GitHub Actions, Harbor, Jenkins, Ansible, Bash, Git, Release Support, Pipeline Improvement, Infrastructure Automation, GitOps Exposure
- Observability & Reliability: Prometheus, Grafana, Loki, Grafana Alloy, Node Exporter, Uptime Kuma, ELK Stack, Zabbix, Uptime Monitoring, SLA/SLO/SLI, Alerting, Incident Response, RCA
- DevSecOps & Security: SonarQube, OWASP ZAP, Semgrep, Aqua Security, Trivy, Wazuh, ModSecurity WAF, Barracuda, SAST, DAST, Vulnerability Management, Hardening, ISO 27001 Practices
- Network, Gateway & HA: HAProxy, NGINX, Traefik, Kong API Gateway, Reverse Proxy, Load Balancing, DMZ Architecture, Firewall Coordination, MikroTik, Cisco Routing & Switching
- Cloud, Data & Middleware: Google Cloud Platform (GCP), AWS, Kafka, Confluent, Apache Druid, TigerGraph, MinIO, MySQL/PostgreSQL Support, Redis, RabbitMQ
Professional Experience
PT Bringin Inti Teknologi (bitcorp.) - Jakarta, Indonesia
Lead System Engineer | January 2025 - Present
- Lead infrastructure and platform engineering support for banking, payment, and enterprise-grade production environments, focusing on reliability, security, operational readiness, and continuous improvement.
- Built and operationalized ETWPAD infrastructure using Kubernetes, GitLab CI/CD, Harbor registry, Uptime Kuma, Grafana, Loki, Grafana Alloy, Prometheus, Node Exporter, SonarQube, OWASP ZAP, Semgrep, Aqua Security, and Trivy.
- Supported successful ETWPAD large-scale testing for 500,000 soldiers/users by strengthening deployment readiness, observability, platform health checks, and cross-team operational coordination.
- Managed and supported TigerGraph platform deployment for Anti-Money Laundering (AML) workloads across VM and bare-metal environments.
- Supported implementation and reporting of Kong API Gateway inside a DMZ architecture for secure service integration and controlled API exposure.
- Designed and maintained high availability patterns using HAProxy, NGINX, Traefik, reverse proxy, WAF, and secure infrastructure routing for large-scale payment and EDC-related platforms.
- Monitored service availability and performance using SLA, SLO, and SLI practices; handled production incidents, troubleshooting, coordination, and RCA support.
- Implemented ISO 27001-aligned security practices, threat monitoring with Wazuh, vulnerability follow-up, infrastructure hardening, and secure operations for critical systems.
- Supported infrastructure migration and relocation initiatives involving servers, firewall coordination, Google Cloud Platform environments, and production service continuity.
System Engineer | July 2020 - December 2024
- Operated cloud and on-premise infrastructure across Linux, Windows Server, AWS, Google Cloud Platform, Docker, Kubernetes, VMware, Proxmox, Nutanix, and production service platforms.
- Improved CI/CD workflows by assisting development teams with GitLab CI/CD, GitHub Actions, automation practices, deployment troubleshooting, and release support.
- Implemented and maintained observability platforms including ELK Stack, Grafana, Zabbix, uptime monitoring bots, centralized logging, and service availability dashboards.
- Configured load balancers, reverse proxies, and WAF controls using NGINX, HAProxy, ModSecurity, and cloud-based infrastructure patterns.
- Automated security testing and quality gates using SonarQube, SAST/DAST practices, CI/CD integration, and vulnerability remediation workflows.
- Installed, configured, and maintained SOC and security monitoring components including Wazuh, IDS/IPS, Kafka, ELK Stack, Apache Druid, Confluent, and related infrastructure services.
- Performed server setup, hardening, backup/restore support, patching, monitoring, and production troubleshooting for multiple customer-facing application platforms.
WIR Group - West Jakarta, Indonesia
System and Network Administrator Intern | January 2019 - June 2019
- Administered MikroTik routers, UBNT access points, NAS storage, hosting environments, and server monitoring activities for internal infrastructure operations.
- Assisted database server migration, backup, restore, and maintenance activities; supported Proxmox virtualization and basic automation using Ansible.
- Performed basic security testing and network troubleshooting using Nmap, Burp Suite, and operational diagnostic tools.
Selected Project Experience
- ETWPAD - Kubernetes Platform, CI/CD, Observability & DevSecOps: Set up and supported Kubernetes-based platform operations, GitLab CI/CD, Harbor registry, observability stack, and DevSecOps tooling; supported successful 500,000 soldiers/users testing.
- Banking / Payment / EDC Infrastructure: Configured reverse proxy, load balancing, WAF, monitoring, security hardening, and infrastructure services for payment and EDC-related systems.
- AML Graph Platform - TigerGraph: Supported deployment and operational management of TigerGraph platform for Anti-Money Laundering workloads across VM and bare-metal infrastructure.
- SOC & Threat Monitoring Platform: Deployed and supported Wazuh, IDS/IPS, Kafka, ELK Stack, centralized logging, alerting, and security monitoring workflows.
- Kong API Gateway in DMZ: Supported API Gateway implementation and reporting for controlled service integrations, security boundaries, and production operational visibility.
- BRILink Microsite / PARI / BRIDGE / Localoka / New Pasar.id: Installed and configured servers, performed hardening, monitoring, vulnerability patching, SAST/DAST support, and production issue troubleshooting.
- Hybrid Cloud & HCI Infrastructure: Supported environments using GCP, AWS, HPE SimpliVity, Nutanix, VMware, Proxmox, Linux, Windows Server, and bare-metal infrastructure.
Certifications & Training
Verified digital badges: credly.com/users/syarifabdillah
Cloud & Infrastructure
- Google Cloud Computing Foundations Certificate
- CompTIA Cloud+ Advanced
- IBM Cloud SRE Essentials
- OpenStack Administration
- Kubernetes Administration
- Docker & DevOps Trainings
- Zerto Certified Associate
- GitLab, AWS, Cloud, Security & DevOps Trainings
Security & Network
- Google Cloud Cybersecurity Certificate
- Fortinet Certified Fundamentals
- Fortinet Certified Associate
- Apex One Certified Professional
- IBM QRadar SIEM Foundation
- CyberArk Certified Trustee
- CNSS Certified Network Security Specialist
- Multicloud Network Associate
Data & Platform Engineering
- TigerGraph Associate
- ArangoDB Professional
- Grafana Alloy, Prometheus, Loki, Grafana, Kafka, Confluent, Apache Druid, Observability, Data Platform, and Platform Engineering exposure through production implementation
Education
- Universitas Budi Luhur — Master of Computer Science (2025 - 2027)
- Universitas Terbuka — Bachelor of Information System, GPA 3.55 (2021 - 2025)
- SMK Wikrama Bogor — Computer and Network Engineering (2017 - 2020)
Honors & Languages
- Best Graduate — Computer and Network Engineering, SMK Wikrama Bogor, 2020
- 2nd Place — LKS IT Network System Administration, Bogor City, 2019
- Languages: Indonesian (Native / Full Professional), English (Limited Working / Professional Communication)